Your organization uses MFA with the Per Authentication usage model. After adding acquired-company users to Azure AD, they must be switched to the Per Enabled User usage model. Solution: you change the existing usage model using the Azure CLI. Does this solution meet the requirement?
Choose an answer
Tap an option to check your answer.
Correct answer: No.
Why this is the answer
No, this solution does not meet the requirement. The Per Authentication usage model for Azure MFA is a legacy model that cannot be directly changed to the Per Enabled User model (which is also a legacy, per-user enforcement model). Modern Azure AD MFA relies on Conditional Access policies, which offer more granular control and are the recommended approach. While you can manage some MFA settings via Azure CLI, switching between these specific legacy usage models is not a supported operation. To transition users from a legacy Per Authentication model to a more flexible, policy-driven approach, you would typically configure Conditional Access policies and ensure users are no longer subject to the legacy per-user enforcement.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed